Jörg Backschues
Jörg Backschues
@jbacksch.bsky.social
Making IT Infrastructure (in)visible, #network, #security, #email, #dns, off time #hiking & #cycling, JM2C only
How We Cracked a 512-Bit DKIM Key for Less Than $8 in the Cloud #email #DKIM
dmarcchecker.app/articles/cra...
How We Cracked a 512-Bit DKIM Key for Less Than $8 in the Cloud
dmarcchecker.app
January 9, 2025 at 3:36 PM
Don't fall for a mail asking for rapid Docusign action – it may be an Azure account hijack phish
www.theregister.com/2024/12/19/d...
Crooks use Docusign lures to attempt Azure account takeovers
Recent campaign targeted 20,000 folk across UK and Europe with this tactic, Unit 42 warns
www.theregister.com
December 19, 2024 at 5:23 PM
Resolutions for New Year 2025: please remember IPv4 flag day February 1st, 2030 #IPv4flagday
ipv4flagday.net
IPv4 flag day
February 1st, 2030 #IPv4flagday
ipv4flagday.net
December 19, 2024 at 1:31 PM
Cloudflare hosted sites are not SSL decrypted due to ECH (encrypted client hello).
knowledge.broadcom.com/external/art...
Cloudflare hosted sites are not SSL decrypted due to ECH (encrypted client hello).
knowledge.broadcom.com
December 9, 2024 at 4:11 PM
Broadcom loses another big VMware customer: UK fintech cloud Beeks Group, and most of its 20,000 VMs: A massively increased bill was one motive, but customers went cold on Virtzilla, and OpenNebula proved more efficient
www.theregister.com/2024/12/02/b...
UK financial services cloud Beeks Group mostly quits VMware
A massively increased bill was one motive, but customers went cold on Virtzilla, and OpenNebula proved more efficient
www.theregister.com
December 4, 2024 at 7:54 PM
DoS Protection in Knot Resolver: protecting against denial-of-service attacks by rate-limiting and prioritization.
www.nic.cz/files/nic/it...
www.nic.cz
November 30, 2024 at 9:20 PM
Detection, analysis and measurement of DNS tunnelling techniques
www.sidnlabs.nl/en/news-and-...
www.sidnlabs.nl
November 27, 2024 at 7:53 PM
The Nearest Neighbor Attack: How A Russian APT Weaponized Nearby Wi-Fi Networks for Covert Access www.volexity.com/blog/2024/11...
The Nearest Neighbor Attack: How A Russian APT Weaponized Nearby Wi-Fi Networks for Covert Access
In early February 2022, notably just ahead of the Russian invasion of Ukraine, Volexity made a discovery that led to one of the most fascinating and complex incident investigations Volexity had ever w...
www.volexity.com
November 23, 2024 at 7:14 PM
Microsoft Outlook für Mac Version 16.91.1: Man kann sich sexuelle Vorlieben auswählen 😉.
November 23, 2024 at 3:47 PM
Nice excuse: If the #FortiGate is performing deep inspection, it always strips the ECH extension from an ECH, effectively forcing the client browser to use a non-ECH TLS connection. #ECH #QUIC #DNS
docs.fortinet.com/document/for...
Control TLS connections that utilize Encrypted Client Hello 7.4.4 | New Features
docs.fortinet.com
November 4, 2024 at 9:41 PM
Suppressing QUIC is certainly not the right way but reflects their helplessness: Prevent QUIC on your network for web filtering #DNS #QUIC
kb.smoothwall.com/hc/en-us/art...
Prevent QUIC on your network for web filtering
This article applies to organisations with an On-Premise setup, and those with a 'Hybrid' setup (both On-Premise Appliance and Cloud).   Quick UDP Internet Connection (QUIC) speeds up connections a...
kb.smoothwall.com
November 4, 2024 at 9:38 PM
A new home for Pixelmator: Today we have some important news to share: the Pixelmator Team plans to join Apple.
www.pixelmator.com/blog/2024/11...
A new home for Pixelmator - Pixelmator Blog
Today we have some important news to share: the Pixelmator Team plans to join Apple.
www.pixelmator.com
November 1, 2024 at 10:43 PM
Microsoft: Announcing General Availability of Inbound SMTP #DANE with #DNSSEC for Exchange Online
techcommunity.microsoft.com/t5/exchange-...
Announcing General Availability of Inbound SMTP DANE with DNSSEC for Exchange Online
Today, we are excited to announce the General Availability of Inbound SMTP DANE with DNSSEC!
techcommunity.microsoft.com
October 29, 2024 at 10:59 AM
The right way, automate your TLS Cert handling: Apple Releases Draft Ballot to Shorten Certificate Lifespan to 45 Days www.sectigo.com/resource-lib...
Apple follows Google in shortening digital certificate lifespans
Apple joins Google in advocating for shorter SSL/TLS certificate lifespans, proposing a gradual reduction to 45 days by 2027. Learn how this impacts businesses and the need for automated certificate l...
www.sectigo.com
October 23, 2024 at 6:13 PM
Schumag AG:
Folgen des Cyberangriffs von Ende September 2024 haben in Kombination mit Umsatzrückgängen zu einer Verschärfung der Situation und einer finanziellen Schieflage geführt
www.schumag.de/schumag-ag-s...
Schumag AG setzt die laufende Restrukturierung im Eigenverwaltungsverfahren fort - SCHUMAG Aktiengesellschaft
Schumag AG setzt die laufende Restrukturierung im Eigenverwaltungsverfahren fort Aachen, 9. Oktober 2024 – Die Schumag AG hat einen Antrag auf Sanierungin Eigenverwaltung beim zuständigen Amtsgericht ...
www.schumag.de
October 14, 2024 at 8:17 AM
It's always #DNS: Controlling DNS Records: By filtering out the DNS records that contain the 'ECH public key before sending DNS requests to the client, the client will be unaware that the target website supports ECH,
swgfl.org.uk/magazine/und...
Understanding the Impact of Encrypted Client Hello on School Filtering Systems
Filtering has become more complex with the introduction of Encrypted Client Hello (ECH), the latest encryption standard aimed at improving user privacy.
swgfl.org.uk
October 7, 2024 at 1:54 PM
Watching TV with the Second-Party: A First Look at Automatic Content Recognition Tracking in Smart TVs
arxiv.org/abs/2409.06203
Watching TV with the Second-Party: A First Look at Automatic...
Smart TVs implement a unique tracking approach called Automatic Content Recognition (ACR) to profile viewing activity of their users. ACR is a Shazam-like technology that works by periodically...
arxiv.org
September 26, 2024 at 9:50 AM
Noch mal Glück gehabt: BGH: Abbildungen einer Fototapete im Internet verletzt die nach dem Urheberrechtsgesetz geschützten Rechte an den auf der Tapete abgedruckten Fotografien nicht.
www.bundesgerichtshof.de/SharedDocs/P...
Presse : Pressemitteilungen aus dem Jahr 2024 - Urheberrechtliche Zulässigkeit der Nutzung von Abbildungen einer Fototapete
www.bundesgerichtshof.de
September 11, 2024 at 11:40 AM
Exploring Anti-Phishing Measures in Microsoft 365
certitude.consulting/blog/en/o365...
Exploring Anti-Phishing Measures in Microsoft 365 – Certitude Blog
certitude.consulting
August 11, 2024 at 12:13 PM
Transparent DNS Proxy Implemented by Malaysian ISPs on Cloudflare and Google Public DNS Servers
imap.sinarproject.org/news/interne...
Internet Censorship Update: Transparent DNS Proxy Implemented by Malaysian ISPs on Cloudflare and Google Public DNS Servers
Transparent DNS Proxy Implemented by Malaysian ISPs on Cloudflare and Google Public DNS Servers
imap.sinarproject.org
August 8, 2024 at 2:43 PM